Senior /Principal Federal Security Engineer

2 hours ago
Full-time
Lead
DevOps and Infrastructure
Saviynt

Saviynt

Saviynt is the leading cloud identity governance platform providing access governance and intelligence solutions for critical applications on Cloud and Enterprise, ensuring operational efficiency, risk reduction, and simplified identity management.

Internet Software & Services
251-1K
Founded 2010
$170M raised

Description

  • Design and maintain high-fidelity detection rules and analytics across SIEM, EDR, and CNAPP/CSPM tools in cloud environments.
  • Lead the full threat detection lifecycle, including research into emerging TTPs and development of custom detection logic.
  • Respond to security alerts and triage findings while coordinating with engineering, security, and leadership teams.
  • Run vulnerability scans, assess exploitability, prioritize risk, and recommend or deploy mitigation controls.
  • Architect and maintain automation to prioritize vulnerabilities across code, containers, and cloud based on risk and exploitability.
  • Develop and refine automated incident response and orchestration playbooks using SOAR.
  • Lead proactive threat hunting efforts to identify threats that bypass traditional security controls.
  • Evaluate and integrate security technologies with attention to scalability, resilience, and FedRAMP compliance.
  • Incorporate industry intelligence, events, indicators of compromise, and other threat data into detection and response capabilities.

Requirements

  • U.S. citizenship is required.
  • Bachelor's degree or equivalent experience is required.
  • Minimum of 10 years of experience in Security Engineering, Security Architecture, Federal Security, or a similar field.
  • Knowledge of U.S. federal government security compliance and risk management requirements, including NIST RMF and NIST SP 800-53 Rev. 5.
  • Experience with vulnerability scanning, remediation, and continuous monitoring.
  • Ability to interpret audit and compliance requirements and support evidence gathering for audits.
  • Strong written and verbal communication skills, including email, presentations, briefing senior managers, and facilitating project meetings.
  • Experience with continuous monitoring and Plans of Actions and Milestones (POA&Ms) is a plus.
  • Knowledge of security and privacy requirements such as HIPAA, FedRAMP, and GDPR/privacy is preferred.
  • Must meet U.S. persons on U.S. soil requirements, undergo a full background investigation, and complete IAL3 identity proofing requirements.

Benefits

  • Competitive total rewards package with a base salary range of $100,000 to $160,000 annually.
  • Eligibility for a discretionary bonus plan based on individual and organizational performance.
  • Learning opportunities and tremendous opportunities to grow and advance in your career.
  • High-growth work environment with challenging, rewarding work that has direct customer impact.
  • Welcoming and positive work environment.
  • Equal opportunity employer with inclusive hiring practices.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

MEDR Threat Engineer

Proficio 51-250 Professional Services

Proficio is hiring a MEDR Threat Engineer to help advance its managed endpoint detection and response services by improving visibility, detection, prevention, and automated incident response across customer environments.

Carbon Black Elasticsearch Linux macOS Network Security SIEM Splunk
0 minutes ago

E01-L03 Cloud Security Specialist III (RMF)

TalentWerx 11-50 Professional Services

EXPANSIA is hiring a Cloud Security Specialist III to support secure cloud environments for U.S. Department of Defense programs by applying RMF, strengthening security controls, and helping ensure compliance and authorization readiness.

Agile SIEM
0 minutes ago

Information Systems Security Officer (ISSO Lead) (R-00047)

True Zero Technologies 11-50 Internet Software & Services

True Zero Technologies is seeking a remote Information Systems Security Officer (ISSO Lead) to oversee the security posture and authorization activities for assigned federal information systems.

Cybersecurity Encryption
15 minutes ago

Senior MacOS Internals Lead Engineer

Senior macOS Internals Lead Engineer at a security and compatibility-focused company, leading low-level macOS development to expand application compatibility and harden endpoint protection.

C# C++ macOS .NET Objective-C Swift
15 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers